Known vulnerabilities in Junos OS 21.2R3-S7

Software: Junos OS
Version: 21.2R3-S7
Software CPE: cpe:2.3:o:juniper_networks:juniper_junos_os:*:*:*:*:*:*:*:*
Total vulnerabilities: 17
Public exploits: 0
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.8

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Junos OS version 21.2R3-S7 Junos OS 21.2R3-S7 is affected by 17 vulnerabilities: 1 high, 14 medium, 2 low Critical High Medium Low

Vulnerabilities (17)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU130698 - Improper Check for Unusual or Exceptional Conditions
CVE-2026-33790
CWE-754 Medium
No
No
21.2R3-S10, 21.4R3-S12, 22.4R3-S9, 23.2R2-S6, 23.4R2-S7, 24.2R2-S3, 24.4R2-S3, 25.2R1-S2, 25.2R2, 25.4R1 08.05.2026 SB2026050823
#VU105679 - Permissions, Privileges, and Access Controls
CVE-2025-21590
CWE-264 High
No
Exploited
21.2R3-S9, 21.4R3-S10, 22.2R3-S6, 22.4R3-S6, 23.2R2-S3, 23.4R2-S4, 24.2R1-S2, 24.2R2, 24.4R1 12.03.2025 SB2025031279
#VU102533 - Out-of-bounds read
CVE-2025-21600
CWE-125 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011032
#VU102532 - Improper Check or Handling of Exceptional Conditions
CVE-2025-21602
CWE-703 Medium
No
No
21.4R3-S9, 22.2R3-S5, 22.3R3-S4, 22.4R3-S5, 23.2R2-S3, 23.4R2-S3, 24.2R1-S2, 24.2R2, 24.4R1 10.01.2025 SB2025011027
#VU102521 - Improper control of a resource through its lifetime
CVE-2025-21593
CWE-664 Medium
No
No
21.2R3-S9, 21.4R3-S10, 22.2R3-S5, 22.3R3-S4, 22.4R3-S3, 23.2R2-S2, 23.4R2, 24.2R1 10.01.2025 SB2025011008
#VU98392 - Improper Check or Handling of Exceptional Conditions
CVE-2024-39525
CWE-703 Medium
No
No
21.2R3-S8, 21.4R3-S8, 22.2R3-S4, 22.3R3-S4, 22.4R3-S3, 23.2R2-S1, 23.4R2, 24.2R1 11.10.2024 SB2024101111
#VU98358 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-47499
CWE-754 Medium
No
No
21.2R3-S8, 21.4R3-S8, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2-S1, 23.4R1-S2, 23.4R2, 24.2R1 10.10.2024 SB2024101031
#VU94357 - Missing release of memory after effective lifetime
CVE-2024-39550
CWE-401 Medium
No
No
21.2R3-S8, 21.4R3-S6, 22.1R3-S5, 22.2R3-S3, 22.3R3-S2, 22.4R3-S1, 23.2R2, 23.4R2, 24.2R1 16.07.2024 SB2024071608
#VU94352 - Improper Neutralization of Data within XPath Expressions
CVE-2024-39565
CWE-643 Medium
No
No
21.2R3-S8, 21.4R3-S7, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2, 23.4R1-S1, 23.4R2, 24.2R1 15.07.2024 SB2024071554
#VU94348 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-39561
CWE-754 Medium
No
No
21.2R3-S8, 21.4R3-S7, 22.1R3-S6, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2, 23.4R1-S1, 23.4R2, 24.2R1 15.07.2024 SB2024071550
#VU94340 - Memory corruption
CVE-2024-39543
CWE-119 Low
No
No
21.2R3-S8, 21.4R3-S8, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2-S1, 23.4R2 15.07.2024 SB2024071530
#VU94337 - Missing release of memory after effective lifetime
CVE-2024-39549
CWE-401 Medium
No
No
21.2R3-S8, 22.2R3-S4, 22.3R3-S3, 22.4R3-S3, 23.2R2-S1, 23.4R1-S2, 23.4R2, 24.2R1 15.07.2024 SB2024071524
#VU94332 - Stack-based buffer overflow
CVE-2024-39556
CWE-121 Low
No
No
21.2R3-S8, 21.4R3-S7, 22.1R3-S6, 22.2R3-S4, 22.3R3-S3, 22.4R3-S2, 23.2R2, 23.4R1-S1, 23.4R2, 24.2R1 15.07.2024 SB2024071521
#VU94197 - Missing release of memory after effective lifetime
CVE-2024-39536
CWE-401 Medium
No
No
21.2R3-S8, 21.4R3-S7, 22.1R3-S4, 22.2R3-S4, 22.3R3, 22.4R2-S2, 22.4R3, 23.2R1 12.07.2024 SB2024071237
#VU94189 - Improper Check for Unusual or Exceptional Conditions
CVE-2024-39545
CWE-754 Medium
No
No
21.2R3-S8, 21.4R3-S7, 22.1R3-J1, 22.1R3-S2, 22.2R3-S1, 22.3R2-S1, 22.3R3, 22.4R1-S2, 22.4R2, 22.4R3, 23.2R1 12.07.2024 SB2024071226
#VU94186 - Use After Free
CVE-2024-39528
CWE-416 Medium
No
No
21.2R3-S8, 21.4R3-S5, 22.2R3-S3, 22.3R3-S2, 22.4R3, 23.2R2, 23.4R1 12.07.2024 SB2024071218
#VU85301 - Missing release of memory after effective lifetime
CVE-2024-21599
CWE-401 Medium
No
No
20.4R3-S3, 21.1R3-S4, 21.2R3, 21.3R2-S1, 21.3R3, 21.4R2, 22.1R2, 22.2R1 11.01.2024 SB2024011120